Insufficient Verification of Data Authenticity in AGESA™ may allow an attacker to update SPI ROM data potentially resulting in denial of service or privilege escalation.
The product does not sufficiently verify the origin or authenticity of data, in a way that causes it to accept invalid data.